Fun

Alex bridge on BNB Smart Chain drained of $4.3M after suspicious upgrade — CertiK

News Feed - 2024-05-15 05:05:19

Christopher Roark3 hours agoAlex bridge on BNB Smart Chain drained of $4.3M after suspicious upgrade — CertiKThe deployer account changed an Alex contract’s implementation address, and multiple tokens were subsequently drained from its bridge.887 Total views9 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksAccording to a May 14 report from blockchain security platform CertiK, the Alex protocol bridge on the BNB Smart Chain network suffered $4.3 million in suspicious withdrawals just after its contract was suddenly upgraded.


Alex is a Bitcoin layer-2 protocol. According to its official website, it provides decentralized finance applications on Bitcoin. Its bridges are used to transfer assets from other networks, such as BNB Smart Chain and Ethereum, to its own network.


Blockchain data confirms that the Alex deployer account performed five identical upgrades to the “Bridge Endpoint” contract on BNB Smart Chain beginning at 3:56 pm UTC. Approximately $4.3 million worth of Binance-Pegged Bitcoin (BTC), USD Coin (USDC), and Sugar Kingdom Odyssey (SKO) were subsequently removed from the BNB Smart Chain side of the bridge.


Because the upgrade was performed by the protocol’s deployer account, CertiK labeled the event “a possible private key compromise.” Source: CertiK


The upgrade transaction changed the implementation address to one ending in 7058. The new implementation is unverified bytecode, making it unreadable to human beings.


About 48 minutes after these upgrades began, the proxy address for the bridge contract called an unverified function on an address ending in 4848E. This resulted in 16 BTC ($983,000 at current prices), 2.7 million SKO ($75,000) and $3.3 million worth of USDC at 4:44 pm, being moved into the address at 484E.


The attacker may also be attempting to drain funds on other networks. At 5:41 pm, just minutes after the suspicious upgrade on BNB Smart Chain, a similar series of Alex upgrades occurred on Ethereum. In this case, the deployer upgraded the “artist address” to an unverified contract. Immediately afterward, an account ending in 05ed attempted to make two withdrawals from the “team address.” These withdrawals failed, producing a “not owner” error.


The 05ed account had no history before May 10. It created one unverified contract on May 10 and two more on May 14, indicating that it may be under the control of a malicious user.


At the time of publication, the Alex team has not confirmed the exploit or commented on the incident.


The Alex bridge wasn’t the only protocol to face a potential exploit in May. On May 13, decentralized exchange Equalizer announced that it had lost more than 2,000 of its own tokens from an attacker who siphoned them away in small increments over several days. The Gnus.ai hack on May 6 also resulted in $1.27 million worth of losses.


Related:CertiK discovered $5M security flaw in Wormhole bridge on Aptos# Bitcoin# Blockchain# Ethereum# Hackers# Private Keys# Cybersecurity# Hacks# DeFi# Layer2Add reaction

News Feed

Candidate for Mayor Promises to Make NYC the Most Cryptocurrency-Friendly City in US
Candidate for Mayor Promises to Make NYC the Most Cryptocurrency-Friendly City in US Curtis Sliwa, a candidate for New York City (NYC) mayor, said that he will make his city ȁ
Mt. Gox moves $2.7B in Bitcoin to new wallet address
Tom Mitchelhill7 hours agoMt. Gox moves $2.7B in Bitcoin to new wallet addressOne of Mt. Gox’s cold wallets just transferred more than 47,000 BTC to an unknown wallet address amid a plan to begin repaying its creditors
Tom Blackstone6 hours agoCrypto fund outflows reach nearly half a billion over 9 weeks — CoinSharesCrypto investment products have seen over $450 million in cumulative outflows over the past nine weeks.737 Total views5
Kamala Harris supporting crypto could impact vote in key states — Think tank
Turner Wright5 hours agoKamala Harris supporting crypto could impact vote in key states — Think tankThe race between presumptive Democratic nominee Kamala Harris and Republican nominee Donald Trump is expected to be cl
Crypto Exchange Bitfront Said to End Korean Services Ahead of Tough New Regulations
Crypto Exchange Bitfront Said to End Korean Services Ahead of Tough New Regulations U.S.-based crypto trading platform Bitfront is going to discontinue services
AI takes center stage as Microsoft and Google earnings signal booming market
Savannah Fortis14 hours agoAI takes center stage as Microsoft and Google earnings signal booming marketMicrosoft and Google’s Q2 earnings reports highlight significant revenue and profit increases driven by their inves
Security Focused DeFi Project EverRise Upgrades Protocol and Launches on 3 Blockchains
Security Focused DeFi Project EverRise Upgrades Protocol and Launches on 3 Blockchains press release PRESS RELEASE.EverRise, the DeFi project that introduced the concept of buybacks
BRICS Nations Ponder Digital Currency to Ease Trade, Reduce USD Reliance
The BRICS association of major emerging economies has discussed developing a digital currency to ease trade in the bloc and reduce its reliance on U.S. dollars in settlement. The po
Biggest Movers: ATOM Hits 4-Month High, NEAR up 10% on Thursday
Biggest Movers: ATOM Hits 4-Month High, NEAR up 10% on Thursday Cosmos moved to a four-month high in today’s session, as crypto markets rebounded following Wednesday’
Reports of ‘bleached’ counterfeit bills crop up across North America
Martin Young3 hours agoReports of ‘bleached’ counterfeit bills crop up across North AmericaDodgy dollars are appearing everywhere, from Texas to Hawaii to Canada, as fiat counterfeiting is seemingly making a comeback
Fintech Revolut integrates with MetaMask for in-app crypto purchases
Ana Paula Pereira5 hours agoFintech Revolut integrates with MetaMask for in-app crypto purchasesAfter reviewing some of its crypto services over the past months, London fintech firm Revolut announces direct purchases thr
US Inflation Continues to Rise Amid Lockdown Talk, Producer Prices Jump 7.8%, Biden Blames OPEC
US Inflation Continues to Rise Amid Lockdown Talk, Producer Prices Jump 7.8%, Biden Blames OPEC The United States is facing severe inflation despite the Federal